Technical Field
[0001] The present invention relates to a playback apparatus for playing a plurality of
relates contents, and in particular, to a technique for protecting copyright of the
content.
Background Art
[0002] Digital contents have begun to be distributed in increasingly diverse forms in recent
years, one of which is distribution using virtual packages.
[0003] A virtual package consists of a plurality of media on which mutually related digital
contents are respectively recorded. The digital contents recorded on the plurality
of media are treated by a playback apparatus as being recorded in one package.
[0004] As one example, a content creator pre-distributes large-capacity content (main content)
that is a movie whose script is in English to the owner of a content playback apparatus,
using a BD-ROM. After the English script has been translated into Japanese, the content
creator distributes small - capacity content (sub - content) that is Japanese subtitles
of the movie, using an SD card. When the sub-content has been distributed, the owner
of the playback apparatus is able to watch the movie that is the main content and
the Japanese subtitles that are the sub-content as if they were one content recorded
in one package.
[0005] Since digital content is easily copied without deterioration of the information,
protection of copyrights of digital content is crucial, regardless of whether or not
it is distributed as a virtual package. For this reason, in addition to recording
digital content in an encrypted state on a recording medium, information that prevents
the content from being decrypted with a playback apparatus key that has been exposed
is written to the recording medium. This technique, which is disclosed in Document
1, improves copyright protection by preventing the content being decrypted with the
exposed key from recording media distributed after the key has been exposed.
[0006] However, this copyright protection is structured such that decryption of encrypted
content can be complete only in information in a package in which digital content
is recorded. Consequently, such copyright protection is problematic in that part of
the content of a virtual package can be played without having all the elements that
make up the virtual package.
[0007] For example, sub-content on an SD card can be played with only the SD card, in other
words, without the BD-ROM that is also an element of the virtual package. This is
contravenes the intention of the copyright owner who created the package.
[0008] - Inviewof the stated problem, the obj ect of the present invention is to provide
a content playback apparatus that plays content recorded in a virtual package in a
manner that assembles the components of the virtual package as intended by the creator,
and protects the copyright thereof.
[0010] WO 96/11446 describes a database system comprising an individual station with berth means for
receiving an optically readable information carrier with local information. The system
reads the carrier and furthermore receives remotely supplied secondary information.
It has a processor for processing both local information and secondary information
to produce output information, and a user interface for presenting said output information
to a user. In particular, the carrier has a read-only part, and a write part for storage
of at least one decryption key.
[0011] EP-A-1 185 022 specifies a tree-structural key distribution system, in which renewed data of a master
key and medium key are sent along with a key renewal block (KRB). KRB is such that
each of devices included as leaves of a tree structure has a leaf key and restricted
node key. A specific KRB can be generated for a group identified by a specific node
and distributed to the group to restrict a device for which the key can be renewed.
Any device not belonging to the group cannot decrypt the key, whereby the security
of key distribution can be assured.
[0012] EP-A-1 271 839 describes a round processing unit in an encryption circuit comprises: a first Round
Key Addition circuit; an intermediate register/Shift Row transformation circuit that
temporarily stores the output of the first Round Key Addition circuit and executes
Shift Row transformation; a Byte Sub transformation circuit into which the values
of the intermediate register/Shift Row transformation circuit are inputted and which
executes Byte Sub transformation; a second Round Key Addition circuit into which the
values of the intermediate register/Shift Row transformation circuit are inputted
and which adds round key values; a Mix Column transformation circuit that executes
Mix Column transformation upon the outputs of the second Round Key Addition circuit;
and a second selector that outputs to the second Round Key Addition circuit one of
the outputs of a first selector, the intermediate register/Shift Row transformation
circuit, the Byte Sub transformation circuit, and the Mix Column transformation circuit.
Such an encryption circuit reduces a scale of circuit and can achieve a certain level
of high-speed processing in the implementation of the AES block cipher.
[0014] WO 02/095747 details an invention that relates to the means for protection of information and
can be used in crypto systems for encoding and decoding of information stored and
distributed on compact disks. The method for recording of initial information characterized
in that main encrypting information is processed in such a manner, as a result of
which two independent parts of information are formed: an informative part and an
accessory part, each of which separately can not reproduce the initial information
even in its separate parts. An accessory part of information is recorded on the disk.
The informative part is encoded by individual keys of the user recorded on an additional
carrier with a processor, in which the algorithm of encoding with individual keys
of the user is implemented. Disks with accessory information may be distributed broadly.
[0015] WO 01/56221 specifies a block encryption method and schemes (modes or operation) that provide
both data confidentiality and integrity with a single cryptographic primitive and
a single processing pass over the input plaintext string by using a non-cryptographic
Manipulation Detection Code function for secure data communication over insecure channels
and for secure data storage in insecure media.
Disclosure of the Invention
[0016] In accordance with the present invention, the foregoing objectives are realised as
defined in claim 1. Preferred embodiments are defined in the dependent claims.
Brief Description of the Drawings
[0017]
FIG. 1 shows an outline of a content playback system of the present invention;
FIG. 2 is a block diagram of the structure of a key management apparatus;
FIG. 3 shows schematically information written on a BD-ROM;
FIG. 4 is a block diagram showing the structure of a recording apparatus;
FIG. 5 shows an example of data stored in a sub-content storage unit;
FIG. 6 shows schematically data stored in a unit value holding unit and an encrypted
sub-content storage unit of an SD card;
FIG. 7 is a block diagram showing the structure of a playback apparatus;
FIG. 8 is a flowchart showing operations by the playback apparatus when playing content;
FIG. 9 is a schematic drawing of a content playback system of a second embodiment
of the present invention;
FIG. 10 shows information relating to content stored by an SD card;
FIG. 11 is a block diagram showing the structure of the content playback system in
terms of function;
FIG. 12 shows information relating to playback control, held by a control unit;
FIG. 13 is a flowchart showing content playback processing in the content playback
system;
FIG. 14 is a schematic drawing of the content playback system of a third embodiment
of the present invention;
FIG. 15 is a block diagram showing the structure of the content playback system of
the third embodiment;
FIG. 16 shows a content playback control table; and
FIG. 17 is a flowchart showing content playback processing in the content playback
system.
Best Mode for Carrying Out the Invention
<First Embodiment>
[0018] The following describes a content playback system of the first embodiment with use
of the drawings.
[0019] First, an overview of the content playback system is given.
[0020] The object of the content playback system is, in the case of a virtual package that
consists of (1) packaged media on which is recorded main content that is audio and
video data or the like, and (2) package media on which is recorded sub-content that
is data such as subtitles relating to the main content, to restrict decryption and
playback of the sub-content such that it is able to be played only when a user also
owns the main content packaged media, in other words, when the user has rights to
the sub-content, and improve protection of copyright.
[0021] Specifically, here an example is used of the main content being a data stream, or
the like, relating to audio and video of a movie, and the sub-contentbeing a data
stream of Japanese or Korean subtitles, or the like, that is not included in the main
content. Furthermore, the copyright owner has created the sub-content with the intention
that it be viewed only by a user who has purchased a packaged media on which the main
content is recorded. The sub-content is not limited to being distributed as packaged
media, but may be distributed over a communication wire, through broadcasting, or
in another manner.
[0022] FIG. 1 is an outline of the content playback system.
[0023] The content playback system is composed of a plurality of playback apparatuses 10a,
10b, 10c, 10d, 10e, etc., a BD-ROM 30, an SD card 40, a key management apparatus 70,
and a recording apparatus 50. The playback apparatuses 10a, 10b, 10c, 10d, 10e, etc.
are for playing the main content and the sub-content. The main content and related
information are recorded on the BD-ROM 30. The sub-content and related information
are recorded on the SD card 40, the sub-content being in an encrypted state. The key
management apparatus 70 manages keys such as device keys that are assigned and distributed
to the playback apparatuses, the device key of each playback apparatus being unique
to that playback apparatus. In addition, the key management apparatus 70 writes various
key information to a lead-in area or the like of the BD-ROM 30 during the BD-ROM manufacturing
process. The recording apparatus 50 records information including content to the BD-ROM
30 and the SD card 40.
[0024] Note that in the following, content is played by a playback apparatus 10 which is
one of the playback apparatuses 10a, 10b, 10c, 10d, 10e, etc.
[0025] The key management system 70 writes key management information and other information
to the lead-in area or the like of the BD-ROM 30, and then transfers the BD-ROM 30
to the recording apparatus 50. The key management information is for revoking a predetermined
device key or keys among the device keys distributed to the playback apparatuses.
[0026] The recording apparatus 50 is a content recording apparatus that includes a content
editing function and is a personal computer or the like to which a keyboard 51 for
operations, a monitor 52, and so on, are connected. The recording apparatus 50 writes
main content to the BD-ROM 30 and sub-content relating to the main content to the
SD card 40.
[0027] The BD-ROM 30 and the SD card 40 to which information has been written by the recording
apparatus 50 are transferred to the user of the playback apparatus 10 through a retail
shop. The user of the playback apparatus 10 inserts the obtained BD-ROM 30 and SD
card 40 in respective insertion slots in the playback apparatus 10.
[0028] The playback apparatus 10 is a drive apparatus for reading the content of the BD-ROM
30, and is, specifically, a BD player or the like that includes a card reader/writer
for reading and writing data from and to the SD card 40, and an optical unit for receiving
instructions from a remote control 20. In accordance with an instruction given by
the user using the remote control 20, the playback apparatus 10 plays content recorded
on the BD-ROM 30 and the SD card 40, and outputs the played content to a monitor 21
which displays the content.
[0029] The following describes the key management apparatus 70.
[0030] FIG. 2 is a block diagram showing the structure of the key management apparatus 70.
[0031] The key management apparatus 70, as shown in FIG. 2, is composed of a device key
storage unit 71, a media key storage unit 72, an RKB generation unit 73, a disc key
storage unit 74, an encrypted disc key generation unit 75, and a disc input/output
unit 76. Specifically, the key management apparatus 70 is a computer system that includes
a CPU, a ROM, a RAM, a hard disc, and a disc drive or a disc machining apparatus that
machines discs. A computer program is stored in the ROM, and the computer system achieves
its functions by the CPU operating according to the computer program.
[0032] The device key storage unit 71 pre-stores valid device keys among the device keys
distributed to the playback devices.
[0033] Each device key is data of a fixed bit-length (256 bytes, for example) that is pre-assigned
uniquely to one of the playback apparatuses.
[0034] The key storage unit 72 pre-stores media keys, each of which is assigned to each
of a predetermined number of recording media (per dispatch lot, for example).
[0035] The media keys are notified by the recording medium manufacturer in advance. Here,
the media key of the BD-ROM 30 is called Km.
[0036] The RKB (renewal key block) generation unit 73 generates a list of encrypted media
keys obtained as a result of encrypting Km with each of the device keys stored in
the device key storage unit 71.
[0037] FIG. 3 shows an overview of information written in the BD-ROM 30.
[0038] As shown in FIG. 3, apparatus numbers assigned uniquely to the playback apparatuses
and an encrypted media key are stored in correspondence as an RKB in an RKB recording
area 31.
[0039] Kdevl represents a device key assigned to a playback apparatus whose device number
is "'I". EI (Kdev 1, Km) represents Km encrypted with Kdev I according to an encryption
method E1.
[0040] Furthermore, EI(Kdev~2, 0) is recorded in correspondence with a playbackapparatus"2".
The result of decrypting EI(Kdev~2, 0) with a device keyKdev~2 willbe"0/', not a media
key. This indicates that the apparatus of apparatus number 2 is revoked.
[0041] A commonly known method such as AES (advanced encryption standard) is suitable for
the encryption methodE1.
[0042] The RKB generation unit 73 records an RKB (described later) in the RKB recording
area of the BD-ROM 30 via the disc input/output unit 76.
[0043] The disc key storage unit 74 stores disc keys, each of which is a key unique to one
BD-ROM. The number of disc keys stored is equal to the number ofBD-ROMs.
[0044] The disc key corresponding to the BD-ROM 30 is called Kd here.
[0045] The encrypted disc key generation unit 75 obtains Km from the media key storage unit
72, obtains Kd from the disc key storage unit 74, and encrypts Kd with Km using the
AES encryption method.
[0046] Details of the AES encryption method can be found on the NIST (National Institute
of Standards and Technology) website (http://csrc.nist.gov/CryptoToolkit/aes/), and
are therefore omitted from the present description.
[0047] Hereinafter, Em(Kd) expresses Kd that has been encrypted using Km.
[0048] The encrypted disc key generation unit 75 records the generated Em(Kd) as shown in
FIG. 3 to an encrypted disc key recording area 32 of the BD-ROM 30 via the disc input/output
unit 76.
[0049] The disc key transmission unit 77 notifies the recording apparatus 50 of the disc
key used in the encrypted disc key generation unit 75, via a network.
[0050] The following describes the recording apparatus 50.
[0051] FIG. 4 is a block diagram showing the structure of the recording apparatus 50.
[0052] As shown in FIG. 4, the recording apparatus 50 is composed of a disc key obtaining
unit 51, a sub-content storage unit 52, a content key generation unit 53, a sub-content
encryption unit 54, a card input/output unit 56, a main content storage unit 57, and
a disc write unit 58. Specifically, the recording apparatus 50 is a computer system
that includes a CPU, a ROM, a RAM, a hard disc, a memory card reader/writer, and a
disc drive or a disc machining apparatus that machines discs. A computer program is
stored in the ROM, and the computer system achieves its functions by the CPU operating
according to the computer program.
[0053] The disc key obtaining unit 51 obtains a disc key from the key management apparatus
70 via a network, and outputs the obtained disc key to the content key generation
unit 53.
[0054] Here, the disc transferred from the key management apparatus 70 is the BD-ROM 3 0,
and the disc key obtained by the disc key obtaining unit 51 is Kd.
[0055] The sub-content storage unit 52 pre-stores content numbers that identify sub-content,
unit values, each of which is a value of a predetermined length (128 bits, for example)
unique to a sub-content, and sub-contents, in correspondence.
[0056] FIG. 5 shows an example of data stored in the sub-content storage unit 52. For example,
sub-content 1 is stored in correspondence with a content number "1", and a unit value
having a value "Vu_1".
[0057] The sub-content storage unit 52 outputs a unit value corresponding to sub-content
to be encrypted to the content key generation unit 53 and the card input/output unit
56, and outputs the sub-content corresponding to the output unit value to the sub-content
encryption unit 54.
[0058] The content key generation unit 53 applies a one-way function, which utilizes an
AES encryption, to the unit value obtained from the sub-content storage unit 52, outputs
an exclusive OR of the result of applying the one-way function and the unit value
to the sub-content encryption unit 54 as a content key Ku.
[0059] The content encryption unit 54 obtains the sub-content from the sub-content storage
unit 52, and encrypts the obtained sub-content with the content key Ku.
[0060] A commonly knownmethod such as AES is suitable for the encryption method.
[0061] The card input/output unit 56 writes the received unit value to the unit value storage
unit 41 of the SD card 40, and records the encrypted sub-content to the encrypted
sub-content storage unit 42 of the SD card 40.
[0062] FIG. 6 shows data stored in the unit value storage unit 41 and the encrypted sub-content
storage unit 42 of the SD card 40, schematically. Each piece of data recorded in the
unit value storage unit 41 is in correspondence with a piece of data recorded in the
same position in the order in the encrypted sub-content storage unit 42.
[0063] For example, Vu_1 and E2(Ku_1, sub-content 1) are in correspondence, and Vu_m and
E2(Ku_m, sub-content m) are in correspondence.
[0064] The main content storage unit 57 stores main content, and outputs the main content
to the disc writing unit 58 which writes the main content to the main content recording
area 33 of the BD-ROM 30, as shown in FIG. 3.
[0065] The following describes the playback apparatus 10.
[0066] In this example, the playback apparatus 10 is the playback apparatus having the apparatus
number "1" in FIG. 3.
[0067] FIG. 7 is a block diagram showing the structure of the playback apparatus 10.
[0068] The playback apparatus 10, as shown in FIG. 7, is composed of an instruction obtaining
unit 11, a control unit 12, a disc input/output unit 13, a device key storage unit
14, an RKB processing unit 15, a disc key generation unit 16, a card input/output
unit 17, a content key generation unit 18, a sub-content decryption unit 19, and a
playback unit 20. Specifically, the playback apparatus 10 is a BD player or the like
that includes a CPU, a ROM, a RAM, an MPEG (moving picture experts group) decoder,
an audio/video signal processing unit, an encryption processing unit, a disc drive,
and a card reader/writer. A computer program is stored in the ROM, and the BD player
achieves its functions by the CPU operating according to the computer program.
[0069] The instruction obtaining unit 11 obtains a user instruction corresponding to a user
operation of the remote control 20, from the remote control 20, and transmits the
obtained instruction to the control unit 12.
[0070] One type of user instruction is a content playback instruction that includes a content
ID identifying content that the user desires to have played.
[0071] Specifically, the control unit 12 is the CPU and the computer program, and controls
overall operations of the playback apparatus 10.
[0072] On receiving the content playback instruction, the control unit 12 instructs the
disc input/output unit 13 to read an RKB from the BD-ROM 30, instructs the RKB processing
unit 15 to process the RKB, instructs the card input/output unit 17 to read the unit
value and the encrypted sub-content, and instructs the playback unit 20 to play the
sub-content.
[0073] The disc input/output unit 13 includes a disc drive for reading information from
the BD-ROM and the control unit of the disc drive. The disc input/output unit 13 reads
the RKB from the BD- ROM in accordance with the instruction from the control unit
12 and outputs the read RKB to the RKB processing unit 15, reads Em(Kd) from the BD-ROM
30 and outputs the read Em(Kd) to the disc key generation unit 16, and reads the main
content from the BD-ROM 30 and outputs the read main content to the playback unit
20.
[0074] The device key storage unit 14 is a non-volatile memory, and pre-stores a device
key Kdev_1 that is a key unique to the playback apparatus.
[0075] The RKB processing unit 15, in accordance with the instruction from the control unit
12, after reading the device key Kdev_1 from the device key storage unit 14 and reading
the RKB from the RKB storage area 31 of the BD-ROM 30 via the disc input/output unit
13, decrypts the encrypted media key E1 (Kdev_1, Km), which corresponds to apparatus
number "1" in the RKB in FIG. 3, with the device key Kdev_1 based on the AES encryption
method, thereby obtaining Km. The RKB processing unit 15 then outputs the generated
Km to the disc key generation unit 16.
[0076] Here, if, for example, the playback apparatus 10 is the apparatus having the revoked
apparatus number "2", a value "0" will be obtained in the decryption processing in
the RKB processing unit 15, and generation of the media key Km will fail. Consequently,
decryption of the sub-content will fail.
[0077] The disc key generation unit 16 is an encryption processing unit that decrypts information
in accordance with the AES encryption method. The disc key generation unit 16 obtains
Km from the RKB processing unit 15, obtains Em(Kd) via the disc input/output unit
13, and decrypts Em(Kd) using Km based on the AES encryption method, thereby obtaining
a disc key Kd.
[0078] The card input/output unit 17 is a card reader/writer that transfers information
to and from the SD card 40. The card input/output unit 17 outputs the unit value read
from the unit value storage unit 41 of the SD card 40 to the content key generation
unit 18, and outputs encrypted sub-content read from the encrypted sub-content storage
unit 42 to the sub-content decryption unit 19.
[0079] The content key generation unit 18 is an encryption processing unit that performs
one-way function processing in accordance with the AES encryption. The content key
generation unit 18 obtains the unit value from the unit value storage unit 41 of the
SD card 40 via the card input/output unit 17, and obtains Kd from the disc key generation
unit 16. The content key generation unit 18 then applies one-way function processing
to the unit value with Kd in accordance with the AES encryption method, and outputs
an exclusive OR of the result of the one-way function and the unit value to the sub-content
decryption unit 19 as a content key Ku.
[0080] The sub-content decryption unit 19 obtains the encrypted sub-content from the encrypted
sub-content storage unit 42 via the card input/output unit 17, and decrypts the encrypted
sub-content using the content key Ku based on a predetermined encryption method (AES,
for example).
[0081] The playback unit 20 is composed of an MPEG decoder and an audio/video signal processing
unit. The playback unit 20 generates audio and video signals from the main content
and the sub-content, and outputs the signals to the monitor 21.
[0082] The following describes operations of the playback apparatus 10 for decrypting and
playing sub-content.
[0083] In the present example, it is assumed the playback apparatus 10 has the apparatus
number "1", and has been instructed by the user to play "sub-content 1" that has a
content number "1".
[0084] FIG. 8 is a flowchart showing operations when the playback apparatus 10 plays content.
[0085] The user of the playback apparatus 10 inserts the BD-ROM 30 in the disc drive of
the playback apparatus 10, and inserts the SD card 40 in the card reader/writer of
the playback apparatus 10.
[0086] The user uses the remote control 20 to instruct the playback apparatus to play the
sub-content 1 that has the content number "1" (step S1).
[0087] The instruction obtaining unit 11 obtains a user instruction instructing playback
of the sub-content 1, from the remote control 20, and transmits the received user
instruction to the control unit 12.
[0088] The control unit 12 obtains the user instruction, stores the value "1" as the content
number of the content to be played, and instructs the RKB processing unit 15 to read
the RKB.
[0089] The RKB processing unit 15 reads the RKB from the RKB recording area 31 of the BD-ROM
30 via the disc input/output unit 13 (step S2).
[0090] The RKB processing unit 15 obtains the device key Kdev_1 from the device key storage
unit 14, extracts E1(Kdev_1,Km), which corresponds to the apparatus "1", from the
RKB, and decrypts E1(Kdev_1,Km) with Kdev_1 (step S3).
[0091] When Km fails to be obtained according to the decryption at step S3 (step S4: NO),
the processing ends.
[0092] When Km is successfully obtained according to the decryption at step S3 (step S4:
YES), the disc key generation unit 16 reads Em(Kd) from the encrypted disc key storage
area 32 of the BD-ROM 30 via the disc input/output unit 13 (step S5).
[0093] The disc key generation unit 16 decrypts Em(Kd) with Km, thereby obtaining Kd, and
outputs Kd to the content key generation unit 18 (step S6).
[0094] The content key generation unit 18 reads Vu_1, which is the unit value corresponding
to the content number "1" stored by the control unit 12, from the unit value storage
unit 41 of the SD card 40, via the card input/output unit 17 (step S7).
[0095] The content key generation unit 18 applies one-way function processing with Kd to
Vu_1 in accordance with the AES encryption method, and outputs an exclusive OR of
the result of the one-way function processing and Vu_1 to the sub-content decryption
unit 19 as a content key Ku_1 (step S8).
[0096] The sub-content decryption unit 19 obtains Ku_1, and reads "encrypted sub-content
1", which corresponds to the content number "1" stored by the control unit 12, from
the encrypted sub-content storage unit 42 via the card input/output unit 17 (step
S9).
[0097] The sub-content decryption unit 19 decrypts the encrypted sub-content 1 using the
content key Ku_1, and outputs the decrypted sub-content 1 to the playback unit 20
(step S10).
[0098] The playback unit 20 reads the main content form the main content storage unit 33
via the disc input/output unit 13, and obtains the sub-content from the sub-content
decryption unit 19. The playback unit 20 then generates audio and video signals from
the main content and the sub-content, and outputs the audio and video signals to the
monitor 21 (step S11).
[0099] As has been described, according to the content playback system of the present invention,
playback of sub-content by the playback apparatus is restricted to cases in which
the packaged media on which content is recorded is inserted in the disc drive of the
playback apparatus and the disc key Kd is able to be obtained.
[0100] Furthermore, the unit value may be distributed together with the encrypted sub-content,
thus eliminating the need to generate a unit value in advance when creating the main
content.
[0101] Furthermore, the present invention makes encrypting of each sub-content using different
content keys simpler, and even if a unit value is exposed, effects of the exposition
can be kept local, so as to only effect the sub-content corresponding to the exposed
unit value.
<Modifications of the first embodiment>
[0102]
- (1) Although AES is described as being used for encrypting and decrypting in the present
embodiment, another encryption method such as DES (data encryption standard) or C2
may be used.
- (2) The recording medium is not limited to having an encrypted disc key and an RKB
stored thereon as in the present embodiment. For example, the disc key may be stored
directly on the recording medium. However, in such a case, it is necessary to record
the disc key using a special method in order to prevent the disc key being read by
an illegal playback apparatus. As on example of the special method, information may
be cut into the BCA (Burst Cutting Area) of the disc with a special laser.
- (3) The recording medium that stores the sub-content is not limited to storing only
the unit value and the encrypted content as described in the present embodiment. Instead,
an encrypted disc key and an RKB may be stored thereon. In this case, the unit value
corresponding to the sub-content is stored in an encrypted state, having been encrypted
with a disc key obtained from the RKB and the encrypted disc key. The playback apparatus
obtains the unit value from the recording medium on which the sub-content is stored,
obtains a disc key from the RKB and the encrypted disc key stored on the sub-content
recording medium, and generates a key for decrypting the content from the obtained
unit value and disc key which is derived from the RKB and the encrypted disc key stored
on the main content recording medium.
<Second Embodiment>
[0103] The following describes the second embodiment of the present invention with use of
the drawings.
<Overview>
[0104] FIG. 9 is a schematic drawing of a content playback system 100 of the second embodiment
of the present invention.
[0105] A BD (Blu-ray Disc) player 122 is a content playback apparatus that plays content
stored on a BD-ROM or an SD card. The BD player 122 includes a function of performing
radio communication with a radio frequency tag.
[0106] A package 101 is composed of a BD-ROM 102, which is a medium on which content is
stored, a box 103 in which the BD-ROM 102 is stored, and a radio frequency tag 104
that is an authentication device attached to the box 103.
[0107] The radio frequency tag 104 performs radio communication with the BD player 122.
[0108] The content recorded on the BD-ROM 102 is stream information that is a data stream
of audio and video of a movie called "Galaxy Wars, Part 1."
[0109] A package 111 is composed of a BD-ROM 112, a box 113 that stores the BD-ROM 112,
and a radio frequency tag 114 that is attached to the box 113.
[0110] The radio frequency tag 114 performs radio communication with the BD player 122.
[0111] The BD-ROM 112 stores stream information of a data stream of audio and video of an
movie of the title "Galaxy Wars: Part 2", which is the sequel to "Galaxy Wars: Part
1" recorded on the BD-ROM 102.
[0112] Here, it is assumed that a user of the BD player 122 already possesses the package
101 and the package 111.
[0113] In order to have the BD player 122 play the content stored on either the BD-ROM 102
or the BD-ROM 112, the user inserts the one of the BD-ROMs that stores the content
that the user wishes to play into a predetermined BD-ROM slot.
[0114] The BD player 122 reads the content that the user wishes to play from the inserted
BD-ROM, and plays the read content.
[0115] Furthermore, the user transmits user instructions to the BD player 122 with use of
a remote control 123 by pressing operation keys such as a fast forward key, a rewind
key, and a stop key.
[0116] On receiving a user instruction, the BD player 122 performs control relating to content
playback, such as fast forwarding, rewinding, and stopping, in accordance with the
user instruction.
[0117] The SD card 121 is a recording medium on which content is recorded, and is distributed
to the user separately to the package 101 or the package 111.
[0118] The SD card 121 is electrically connected to the BD player 122 by being mounted in
the predetermined SD card slot therein.
[0119] The SD memory card 121 stores stream information that is a data stream of audio and
video of a program related to the movie stored on the BD-ROM, such as a behind-the-scenes
video of the movie, or a commercial video or the like that is unrelated to the movie.
Here, a behind-the-scenes video is a video that, for example, shows how the movie
was f ilmed, secrets of the filming, or the activities of the performers in the movie
during waiting time in the filming. A commercial video is a video for advertising
a product or the like that is not related to the main feature movie.
[0120] FIGs. 10A and 10B show information relating to content stored on the SD card 121.
[0121] FIG. 10A shows content stored on the SD card 121.
[0122] The SD card 121 stores four contents: contents 151, 152, 153, and 154.
[0123] The content 151 is stream information of a commercial video that is unrelated to
the movie.
[0124] The content 152 is encrypted information generated by encrypting data stream information
of a behind-the-scenes video of the movie "Galaxy Wars: Part 1" with use of a first
content key. The content 152 can be decrypted with the first content key.
[0125] The content 153 is encrypted information generated by encrypting data stream information
of a behind-the-scenes video of the movie "Galaxy Wars: Part 2" with use of a second
content key. The content 153 can be decrypted with the second content key.
[0126] The content 154 is encrypted information generated by encrypting, with use of a third
content key, stream data of a highlights video that includes a behind-the-scenes video
of a movie "Galaxy Wars: Part 3" that has not yet been released, in addition to the
behind-the-scenes videos of the movies "Galaxy Wars: Part 1" and "Galaxy Wars: Part
2". The content 154 can be decrypted with the third content key.
[0127] The third content key is generated from the first content key and the second content
key.
[0128] In this example, the first content key is stored in a storage area in the radio frequency
tag 104, and the second content key is stored in a storage area in the radio frequency
tag 114.
[0129] FIG. 10B shows the structure of the content 151 in a simplified manner.
[0130] The content 151 is composed of three sections: a chapter 161, a chapter 162, and
a chapter 163.
[0131] The chapter 161 is commercial video for encouraging purchase of the package of "Galaxy
Wars: Part 1" , and is intended by the creator of the content 151 to be viewed by
users who have not purchased the package 101.
[0132] The chapter 162 is commercial video for encouraging purchase of the package of "Galaxy
Wars: Part 2" , and is intended by the content creator to be viewed by users who have
not purchased the package 111.
[0133] The chapter 163 is commercial video for advertising a product or the like that is
unrelated to "Galaxy Wars: Part 1" and "Galaxy Wars: Part 2", and is intended by the
content creator to be viewed by all users, regardless of whether the user has purchased
the packages.
[0134] Each of the chapters 161, 162, and 163 are played by the BD player 122 following
playback path information that indicates playback permission and a playback order.
[0135] The path playback information is described later.
<Structure>
[0136] FIG. 11 is a block diagram showing the structure of the content playback system 100
in terms of function.
<Radio frequency tags 104 and 114>
[0137] Specifically, each of the radio frequency tags 104 and 114 is a module composed of
an IC that has the function of performing radio communication, an antenna, and a small-capacity
storage area.
[0138] In terms of function, the radio frequency tag 104 is composed of a communication
unit 201, an authentication unit 202, and an information storage unit 203, as shown
in FIG. 11.
[0139] The communication unit 201 performs radio communication with the BD player 122.
[0140] The authentication unit 202 performs authentication processing with the BD player
122 via the communication unit 201.
[0141] In this example, challenge-response authentication is used in the authentication
processing.
[0142] The following describes challenge-response authentication.
[0143] The BD player 122 and the authentication unit 202 store a parent password in advance.
[0144] The BD player 122 generates a random number, and transmits the random number to the
authentication unit 202.
[0145] The authentication unit 202 calculates a child password that is a hash value of information
that consists of the parent password and the random number, and transmits the child
password to the BD player 122.
[0146] The BD player 122 calculates a hash value of information that consists of the parent
password and the random number, and when the calculated hash value matches the child
password transmitted by the authentication unit 202, judges that the result of authentication
is legal.
[0147] The authentication unit 202 receives the authentication result from the BD player
122.
[0148] The information storage unit 203 stores the first content key.
[0149] When the result of authentication processing by the authentication unit 202 is legal,
the information storage unit 203 transmits the first content key of the BD player
122 via the communication unit 201.
[0150] The radio frequency tag 114 has the same structure as the radio frequency tag 104,
and is composed of a communication unit 211, an authentication unit 212, and an information
storage unit 213.
[0151] The radio frequency tag 114 stores the second content key in the information storage
unit 213.
<SD card 121>
[0152] Specifically, the SD card 121 is a memory card that includes an IC and a large-capacity
storage area.
[0153] As shown in FIG. 11, in terms of function, the SD card 121 has a content storage
unit 221.
[0154] The content storage unit 221 stores the contents 151 to 154 as described earlier.
<BD player 122>
[0155] The communication units 231and233 perform radio communication with the radio frequency
tags 104 and 114.
[0156] The authentication unit 232 performs challenge-response authentication processing
with the radio frequency tag 104.
[0157] The authentication unit 232 outputs a first authentication result, which is the result
of the authentication processing, to the control unit 236, and also transmits the
first authentication result to the radio frequency tag 104 via the communication unit
231.
[0158] The communication unit 231 receives the first content key stored by the information
storage unit 203 via the communication unit 201, and outputs the first content key
to the control unit 236.
[0159] The authentication unit 234 performs challenge-response authentication processing
with the radio frequency tag 114 via the communication unit 233.
[0160] The authentication unit 234 outputs a second authentication result, which is the
result of the authentication processing, to the control unit 236, and also transmits
the second authentication result to the radio frequency tag 114 via the communication
unit 233.
[0161] The communication unit 233 receives the second content key stored by the information
storage unit 213 via the communication 211, and outputs the second content key to
the control unit 236.
[0162] The control unit 236 obtains the f irst and second authentication results from the
authentication units 232 and 234, and performs playback control of the content stored
in the SD card 121, by instructing the decryption unit 237 and the playback unit 238
in accordance with the combination of the authentication results.
[0163] The control unit 236 stores, in advance, a playback path selection table relating
to the playback path information.
[0164] FIGs. 12A and 12B show information relating to playback control, stored by the control
unit 236.
[0165] FIG. 12A is the playback path selection table stored by the control unit 236.
[0166] The playback path selection table indicates correspondence between combinations of
whether each of the first and second authentication results are legal or illegal,
and the playback path information.
[0167] Here, the playback path information indicates a playback order in which the chapters
are played.
[0168] For example, a playback path 261 indicates that the chapters are played in order
of chapter 163, chapter 161, and chapter 162.
[0169] When both the obtained first and second authentication results indicate illegal,
the control unit 236 selects the playback path 261 based on the playback path selection
table.
[0170] FIG. 12B shows a playback permission judgment table stored in the control unit 236.
[0171] The playback permission judgment table indicates correspondence between combinations
of whether each of the first and second authentication results are legal or illegal,
and content among content 152 to 154 to be played.
[0172] For example, when both the obtained first and second authentication results are legal,
the control unit 236, in accordance with the playback permission judgment table, controls
so that the content 154 is played.
[0173] Furthermore, by storing a correspondence table, the control unit 236 understands
that the first content key corresponds to the content 152, that the second content
key corresponds to the content 153, and that the third content key can be generated
from the first and second content keys and corresponds to the content 154.
[0174] The control unit 236 receives the first content key stored in the information storage
unit 203 via the communication 231, and receives the second content key stored in
the information storage unit 213 via the communication unit 233.
[0175] The decryption unit 237 obtains the first content key and the second content key
from the control unit 236.
[0176] The decryption unit 237 generates the third content key from the first content key
and the second content key.
[0177] Furthermore, when the content that the control unit 236 has judged will be played
is encrypted, the decryption unit 237 decrypts the content with the corresponding
one of the first to third content keys.
[0178] The playback unit 238 plays content instructed by the control unit 236.
[0179] The playback instruction obtaining unit 239 obtains the user instruction from the
remote control 123, and outputs the user instruction to the control unit 236.
[0180] The timer 240 includes a clock and a counter. A timeout value that is a multiple
of 1 second is set by the control unit 236 in the counter.
[0181] The timer 240 counts down from the time out value, subtracting "1" every one second.
<Operations>
[0182] The following describes operations in content playback processing in the content
playback system 100, with reference to FIG. 13.
[0183] FIG. 13 is a flowchart showing content playback processing in the content playback
system 100.
[0184] The user inserts the SD card 121 into the SD slot in the BD player 122 (step S101).
[0185] The BD player 122 and the SD card 121 are electrically connected.
[0186] The user places the radio frequency tags 104 and 114 such that they are in a range
in which radio communication with the BD player 122 is possible.
[0187] The control unit 236 sets a value "5" in the timer 240, indicating a timeout value
of five seconds (step S102).
[0188] The timer 240 counts down from the set value, subtracting "1" every second.
[0189] The control unit 236 judges whether the present value in the timer 240 is a value
"0" that expresses timeout (step S103).
[0190] If the timer 240 indicates timeout, the timer 240 judges the result of the unfinished
authentication to be illegal, and notifies the authentication result to the control
unit 236 (step S104).
[0191] The communication units 231 and 233 attempt to communicate with a radio frequency
tag with which authentication processing has not been performed (step S105).
[0192] If neither of the communication units 231 and 233 is able to communicate with the
radio frequency tag with which authentication processing has not been performed, the
process returns to step S103.
[0193] If one of the communication units 231 and 233 are able to communicate with the radio
frequency tag with which authentication processing has not been performed, authentication
processing is performed (step S106).
[0194] The authentication processing is challenge-response authentication as described earlier,
and the authentication result is either "legal" or "illegal".
[0195] The authentication unit that performed authentication notifies the authentication
result to the control unit 236 (step S107).
[0196] The control unit 236 stores the authentication result.
[0197] The control unit 236 judges whether all authentication processing has finished by
checking whether or not all authentication results that should have been obtained
have been obtained (step S108).
[0198] If the control unit 236 judges that all authentication processing has not finished,
the processing returns to step S103 and continues.
[0199] When the control unit 236 judges that all authentication processing has finished,
the processing proceeds to step S109.
[0200] The control unit 236 instructs the timer 240 to stop the count down, thereby ending
timeout measurement processing (step S109).
[0201] The control unit 236 selects a playback path corresponding to the combination of
obtained authentication results, from the playback path selection table (step S110).
[0202] The control unit 236 selects encrypted information corresponding to the combination
of authentication results, from the playback permission judgment table (step S111).
[0203] The decryption unit 237 obtains the first content key and the second content key
from the control unit 236, and generates the third content key (step S112).
[0204] The decryption unit 237 decrypts the selected encrypted content using the corresponding
one of the first to third content keys, and outputs the decrypted content to the playback
unit 238.
[0205] The playback unit 238 plays the content 151 following the selected playback path
(step S113).
[0206] The playback unit 238 then plays the next decrypted content received from the decryption
unit 237.
<Third Embodiment>
[0207] The following describes a third embodiment of the present invention with use of the
drawings.
<Overview>
[0208] FIG. 14 is a schematic drawing of a content playback system 300 of the third embodiment
of the present invention.
[0209] A BD player 332 is a content playback apparatus that plays content stored on a BD-ROM
or an SD card. The BD player 332 includes a function of performing radio communication
with a radio frequency tag.
[0210] A package 301 is composed of a BD-ROM 302, which is a medium on which content is
stored, a box 303 in which the BD-ROM 302 is stored, and a radio frequency tag 304
that is an authentication device attached to the box 303.
[0211] The radio frequency tag 304 performs radio communication with the BD player 332.
[0212] The content recorded on the BD-ROM 302 is stream information that is a data stream
of audio and video of the movie called "Galaxy Wars, Part 1."
[0213] A package 311 is composed of a BD-ROM 312, a box 313 that stores the BD-ROM 312,
and a radio frequency tag 314 that is attached to the box 313.
[0214] The radio frequency tag 314 performs radio communication with the BD player 332.
[0215] The BD-ROM 312 stores stream information of a data stream relating to audio and video
of the movie of the title "Galaxy Wars: Part 2", which is the sequel to "Galaxy Wars:
Part 1" recorded on the BD-ROM 302.
[0216] A package 321 is composed of a BD-ROM 322, a box 323 that stores the BD-ROM 322,
and a radio frequency tag 324 that is attached to the box 323.
[0217] The radio frequency tag 324 performs radio communication with the BD player 332.
[0218] The BD-ROM 322 stores stream information of a data stream relating to audio and video
of the movie of the title "Galaxy Wars: Part 3", which is the sequel to "Galaxy Wars:
Part 2".
[0219] Here, it is assumed that a user of the BD player 332 already possesses the packages
301, 311 and 321.
[0220] In order to have the BD player 332 play the content recorded in either the package
301, 311, or 321, the user inserts the one of the BD-ROMs 302, 312 and 322 that stores
the content that the user wishes to play into a predetermined BD-ROM slot of the BD
player 332.
[0221] The BD player 332 reads and plays content recorded on the inserted BD-ROM.
[0222] Furthermore, the user transmits user instructions to the BD player 332 with use of
a remote control 333 by pressing operation keys such as a fast forward key, a rewind
key, and a stop key.
[0223] On receiving a user instruction, the BD player 332 performs control relating to content
playback, such as fast forwarding, rewinding, and stopping, according to the user
instruction.
[0224] The SD card 3 31 is a recording medium on which content is recorded, and is distributed
to the user separately to the package 301, 311 or 321.
[0225] The SD card 331 is connected to the BD player 332 by being mounted in a predetermined
SD card slot therein.
[0226] The SD card 331 stores three contents: content 341, content 342, and content 343.
[0227] Here, each of the contents 341 to 343 is data stream information that is a data stream
of audio and video of a movie.
<Structure>
[0228] FIG. 15 is a block diagram showing the structure of the content playback system 300
that is the third embodiment of the present invention.
<Radio frequency tag 304, radio frequency tag 314, and radio frequency tag 324>
[0229] Specifically, each of the radio frequency tags 304, 314 and 324 is a module composed
of an IC that has the function of performing radio communication, an antenna, and
a small-capacity storage area.
[0230] As shown in FIG. 15, in terms of function, the radio frequency tag 304 includes a
communication unit 351 and an information storage unit 352.
[0231] The communication unit 351 performs radio communication with the BD player 332.
[0232] The information storage unit 352 stores a medium designation identifier that identifies
an SD card whose use is anticipated.
[0233] The value of the medium designation identifier stored by the information storage
unit 352 is "3".
[0234] The information storage unit 352 transmits the medium designation identifier to the
BD player 332 via the communication unit 351.
[0235] The radio frequency tags 314 and 324 have the same structure as the radio frequency
tag 304.
[0236] The value of the medium designation identifier stored in the information storage
unit 362 is "1".
[0237] The value of the medium designation identifier stored in the information storage
unit 372 is "3".
<SD card 331>
[0238] The SD card 331 includes a communication unit 381, and authentication 382, and a
content storage unit 383.
[0239] SD cards are each assigned a medium identifier for identifying the medium.
[0240] In this example, the value of the medium identifier of the SD card 331 is set as
"3".
[0241] The authentication unit 382 stores the medium identifier.
[0242] The communication unit 381 performs communication of information with the BD player
332.
[0243] The authentication unit 382 performs authentication processing with the BD player
332 via the communication unit 381.
[0244] In this example, challenge-response authentication is used in the authentication
processing.
[0245] The following describes the challenge and response authentication.
[0246] The BD player 332 and the authentication unit 382 store a parent password in advance.
[0247] The BD player 332 generates a random number, and transmits the random number to the
authentication unit 382.
[0248] The authentication unit 382 calculates a child password that is a hash value of information
that consists the parent password and the random number, and transmits the child password
to the BD player 332.
[0249] The BD player 332 calculates a hash value of information that consists of the parent
password and the random number, and when the calculated hash value matches the child
password transmitted by the authentication unit 382, judges that the result of authentication
is legal. Furthermore, when the calculated hash value does not match the child password,
the authentication result is illegal.
[0250] The authentication unit 382 transmits the medium identifier to the BD player during
authentication processing.
[0251] The content storage unit 383 stores the content 341, the content 342, and the content
343.
[0252] The information stored in the content storage unit 383 is read by the BD player 332
via the communication unit 381.
<BD player 332>
[0253] The communication unit 391 performs radio communication with the radio frequency
tag 304, the radio frequency tag 314, and the radio frequency tag 324.
[0254] The authentication unit 392 performs challenge-response authentication processing
with the authentication 382 via the communication unit 393 and the communication unit
381.
[0255] The authentication unit 392 outputs the result of the authentication processing to
the control unit 394.
[0256] The control unit 394 obtains the authentication result from the authentication unit
392.
[0257] The authentication unit 392 obtains the medium identifier held by the authentication
unit 392 from the authentication unit 382 during authentication.
[0258] When the authentication result is legal, the control unit 394 plays the content stored
on the SD card 331, based on a stored content playback control table.
[0259] FIG. 16 shows the content of the content playback control table.
[0260] The content playback control table indicates correspondence between "match counts"
and content that is to be played. Each match count indicates a count of received medium
identifiers that match a medium identifier of a medium storing content.
[0261] For example, in the present embodiment, since the value of the medium identifier
read from the SD card 331 is "3", the value of the medium designation identifier obtained
from the radio frequency tag 304 is "3", the value of the medium designation identifier
obtained from the radio frequency tag 314 is "1", and the value of the medium designation
identifier obtained from the radio frequency tag 334 is "3", the match count is 2.
[0262] Consequently, following the content playback control table, the control unit 394
judges that the content 324 is to be played.
[0263] The control unit 394 notifies the playback unit 395 of the content to be played back
that was selected in accordance with the content playback control table.
[0264] The playback unit 395 plays the content 342, which is the content to be played back
in accordance with the notification from the control unit 394.
[0265] A playback request obtaining unit 396 obtains the user instruction from the remote
control 333, and outputs the obtained user instruction to the control unit 394.
[0266] The timer 397 includes a clock and a counter. A timeout value that is a multiple
of 1 second is set by the control unit 394 in the counter.
[0267] The timer 397 counts down from the time out value, subtracting "1" every one second.
<Operations>
[0268] The following describes operations in content playback processing in the content
playback system 300, with reference to FIG. 17.
[0269] FIG. 17 is a flowchart showing content playback processing in the content playback
system 300.
[0270] The user inserts the SD card 331 into the SD slot in the BD player 332 (step S201).
[0271] The BD player 332 and the SD card 331 are electrically connected.
[0272] The user places the radio frequency tags 304, 314 and 324 such that they are in a
range in which radio communication with the BD player 332 is possible.
[0273] The control unit 394 sets a value "5" in the timer 397, indicating five seconds as
the timeout value (step S202).
[0274] The timer 397 counts down from the set value, subtracting "1" every second.
[0275] The control unit 394 judges whether the present value in the timer 397 is a value
"0" that expresses timeout (step S203).
[0276] If the timer 397 indicates timeout, the processing proceeds to step S207.
[0277] If the timer 397 does not indicate timeout, the BD player 332 attempts to detect
a radio frequency tag whose medium designation identifier has not been notified, with
the intention of communicating with the detected radio frequency tag (step S204).
[0278] When such a radio frequency tag is not detected at step S204, the processing returns
to step S203.
[0279] When such a radio frequency tag is detected at step S204, the BD player 332 obtains
the medium designation identifier from the detected radio frequency tag (step S205).
[0280] The BD player 332 judges whether or not it has communicated with all radio frequency
tags with which itwas intending to communicate (step S206).
[0281] If the BD player 332 judges at step S206 that communication has not finished, the
processing returns to step S203.
[0282] If the BD player judges at step S206 that communication has finished, the control
unit 394 notifies the timer 397 of the end of timeout detection (step S207).
[0283] The timer 397 ends timeout detection processing, and clears the counted value.
[0284] The control unit 394 selects the content to be played, based on the content playback
control table (step S208).
[0285] The playback unit 395 plays the content selected at step S208 (step S209).
<Modifications>
[0286] The content playback system of the present invention is not limited to the described
embodiments. Various modifications may be made in a range that does not deviate from
the scope of the present invention.
- (1) In the second and third embodiments, a radio frequency tag is used as the medium
that performs authentication, and BD-ROMs and SD cards are used as the media which
store the content. However, the media are not limited to these, and may be media and/or
apparatuses having equivalent functions, such as any of an MO, a DVD, a DVD-ROM, a
DVD-RAM, a semiconductor memory, or an IC card, or a mobile telephone or a PDA in
which is mounted an LSI having an authentication function.
[0287] The content playback apparatus that performs authentication is not limited to being
a BD player, but may be any apparatus having equivalent functions, such as a DVD player,
a personal computer, a video deck, or a home server that includes an HDD.
(2) Although the challenge-response authentication is described as being used in the
second and third embodiments, any authentication method may be used as long as authentication
can be performed.
[0288] Examples of other authentication methods are one time password authentication, and
authentication using a digital signature.
[0289] Furthermore, examples of secure authentication methods includes a method using PKI,
a method using media key obtaining means used in CPRM for DVD-RAM, and a media key
obtaining method with mutual authentication used in CPRM for SD.
[0290] Furthermore, instead of mutual authentication, authentication processing may be performed
by one side only.
[0291] The following is a possible structure in the second embodiment: the radio frequency
tag-side transmits a tag identifier that identifies the radio frequency tag, and the
BD player-side stores, in advance, an authentication identifier identifying a radio
frequency tag to be authenticated. The result of authentication is legal if the tag
identifier and the authentication identifier match.
(3) If the content playback apparatus performs playback control based on authentication
processing, it is unnecessary for the content and other information stored on the
SD card or the like to be stored in an encrypted state.
(4) In the second embodiment, when the SD card stores one content, the content may
be played if the authentication results of both the radio frequency tag 104 and the
radio frequency tag 114 are legal.
(5) Although the content 151 is always played in the second embodiment, a structure
is possible in which the content 151 is not played.
[0292] Furthermore, the playback permission judgment table in the BD player may be used
for other control according to the combinations of a plurality of authentication processing
results.
[0293] For example, the playback permission table judgment table may store, in correspondence,
combinations of authentication processing results, and processing to be executed following
user instructions such as rewind, fast forward, and stop.
[0294] With such a structure, the instruction that the user is able to give the BD player
using the remote control varies according to the combinations of the authentication
processing result.
(6) The number of contents selected for playback with respect to each combination
of authentication results is not limited to one, but may be two or more contents that
are played one after the other.
[0295] Furthermore, instead of no content being played when all the authentication results
are illegal, other content may be played in this case.
(7) Although the correspondence between the match count judged by the BD player and
the instructed content is one-to-one in the third embodiment, it is not limited to
being so.
[0296] For example, the content 343 may be played if the match count is two or greater.
Furthermore, the contents 342 and 343 may be played if the match count is two.
(8) The authentication media and the media on which the contents are recorded are
not limited to being separate structures.
[0297] For example, the authentication processing by the radio frequency tag 114 in the
second embodiment may be performed by the SD card 121, and the radio frequency tag
114 omitted.
(9) The present invention is: a content playback apparatus for playing content, based
on authentication results, including: an authentication unit operable to perform first
device authentication with a first authentication device, and perform second device
authentication with a second authentication device; a determination unit operable
to determine a content playback method based on an authentication result combination
of the first and second authentications; and a playback unit operable to play content
stored in a content storage medium, based on the determined playback method.
[0298] Furthermore, the determination unit may further determines that content playback
is prohibited, when both the first device authentication and the second device authentication
result in failure, and the playback unit may prohibits playback of the content when
content playback is determined to be prohibited.
[0299] Furthermore, the playback method may include a playback range of a plurality of contents
and a playback order of each playback range, and the playback apparatus may play the
content based on the determined playback range of the plurality of contents and the
playback order of each playback range.
[0300] Furthermore, the present invention is a content playback apparatus for playing content
based on authentication results, including: an authentication unit operable to perform
first authentication based on first information obtained from a first recording medium,
and perform second authentication based on second information obtained from a second
recording medium; a determination unit operable to determine a playback method based
on a combination of authentication results of the first and second authentications;
and a playback unit operable to play content stored in a content storage medium, based
on the determined playback method.
[0301] Furthermore, the content may be an encrypted digital work, the first information
may include a first encryption key, and the second information includes a second encryption
key, the content playback apparatus may further include: a decryption unit operable
to generate a content key from the first encryption key and the second encryption
key, and decrypt the encrypted digital work with use of the content key, and the playback
unit may play the decrypted digital work based on the determined playback method.
[0302] Furthermore, the present invention is a playback apparatus, including: an obtaining
unit operable to obtain first medium designation information from a first recording
medium, and obtain medium designation information from a second recording medium;
a read unit operable to read at least one piece of medium identification information
from at least one content recording medium; a determination unit operable to determine
a content playback method based on how many pieces of the recording medium information
match the medium designation information; and a playback unit operable to play content
stored on the content storage medium, based on the determined content playback method.
[0303] Furthermore, the present invention is a playback method for playing content stored
on a content storage medium, based on authentication results, including: an authentication
step of performing first device authentication with a first authentication device,
and performing second device authentication with a second authentication device; a
determination step of determining a content playback method based on an authentication
result combination of the first and second authentications; and a playback step of
playing content stored in a content storage medium, based on the determined playback
method.
[0304] Furthermore, the present invention is a program applied to a content playback apparatus
for playing content stored on a content storage medium, based on authentication results,
the program having executed on a computer: an authentication step of performing first
device authentication with a first authentication device, and performing second device
authentication with a second authentication device; a determination step of determining
a content playback method based on an authentication result combination of the first
and second authentications; and a playback step of playing content stored in a content
storage medium, based on the determined playback method.
[0305] Furthermore, the present invention is a content playback system composed of a content
playback apparatus for playing content, based on authentication results, first and
second authentication devices for performing device authentication with the content
playback apparatus, and a recording medium on which content is stored, the content
playback apparatus including an authentication unit operable to perform first mutual
device authentication with the first authentication device, and perform second mutual
device authentication with the second authentication device; a determination unit
operable to determine a content playback method based on an authentication result
combination of the first and second device authentications; and a playback unit operable
to play content stored in the content storage medium, based on the determined playback
method.
(10) The present invention may be methods shown by the above. Furthermore, the methods
may be a computer program realized by a computer, and may be a digital signal of the
computer program.
[0306] Furthermore, the present invention may be a computer-readable recording medium apparatus
such as a flexible disc, a hard disc, a CD-ROM, an MO, a DVD, a DVD-ROM, a DVD RAM,
a BD (Blu-Ray Disc), or a semiconductor memory, that stores the computer program or
the digital signal. Furthermore, the present invention may be the computer program
or the digital signal recorded on any of the aforementioned recording media.
[0307] Furthermore, the present invention may be the computer program or the digital signal
transmitted on a electric communication line, a wireless or wired communication line,
or a network of which the Internet is representative.
[0308] Furthermore, the present invention may be a computer system that includes a microprocessor
and a memory, the memory storing the computer program, and the microprocessor operating
according to the computer program.
[0309] Furthermore, by transferring the program or the digital signal to the recording medium
apparatus, or by transferring the program or the digital signal via a network or the
like, the program or the digital signal may be executed by another independent computer
system.
Industrial Applicability
[0310] The present invention can be produced by a manufacturer of electronic products such
as players for playing digital content stored on a BD-ROM, DVD, SD card or the like,
and can be used in a system in which digital content is distributed and played while
maintaining protection of copyright of the digital content.
1. A content playback apparatus (10) for obtaining encrypted sub-content, decrypting
the obtained encrypted sub-content, and playing main content and the decrypted sub-content,
the encrypted sub-content being generated by encrypting the sub-content based on a
first key, the sub-content being related to the main content,
characterized by
the first key being generated by applying a predetermined operation to key generation
information based on a disc key,
the main content, a key management information list, and an encrypted disc key are
recorded on a recording medium (30), the key management information list including
encrypted key management information, the encrypted key management information generated
by encrypting key management information based on a third key, the key management
information including one of a second key and information that shows that the content
playback apparatus (10) is revoked, the encrypted disc key generated by encrypting
the disc key by using the second key,
the content playback apparatus (10) comprising:
a key storage unit (14) operable to store the third key which has been pre-assigned
to the content playback apparatus (10);
an information reading unit (13) operable to read the main content, the encrypted
key management information included in the key management information list and the
encrypted disc key from the recording medium (30);
a key obtaining unit (15) operable to decrypt the encrypted key management information
based on the third key, to obtain the one of the second key and the information that
shows that the content playback apparatus (10) is revoked;
a disk key generating unit (16) operable to, when the key obtaining unit (15) has
obtained the second key, obtain the second key from the key obtaining unit (15), and
decrypt the read encrypted disc key using the second key, thereby obtaining the disc
key;
an information obtaining unit (17) operable to obtain the encrypted sub-content and
the key generation information from an information source (40) other than the recording
medium (30);
a content key generation unit (18) operable to apply the predetermined operation to
the obtained key generation information, based on the disc key obtained by the disk
key generating unit (16), thereby generating a first key;
a decryption unit (19) operable to decrypt the encrypted sub-content based on the
generated first key; and
a playback unit (20) operable to generate signals from the main content and the sub-content.
2. The content playback apparatus of Claim 1, wherein the key management information
list is a list that includes at least encrypted second keys or encrypted information
showing that the content playback apparatus (10) is revoked, each of the encrypted
second keys and the encrypted information having been generated by encrypting with
use of a different one of the third key and a plurality of keys equivalent to the
third key, and
the key obtaining unit (15) decrypts, based on the third key stored by the key storage
unit (14), the one of the second keys and the piece of information showing that the
content playback apparatus (10) is revoked that was encrypted with the third key stored
in the key storage unit (14).
3. The playback apparatus of Claim 1, wherein
the key management information list is a list of encrypted second keys that have been
generated by encrypting the second key respectively with use of valid keys, and
the key storage unit (14) stores a plurality of keys,
the key obtaining unit, when one of the plurality of keys stored in the key storage
unit (14) matches one of the valid keys, considers the matching key to be the third
key.
4. The content playback apparatus of Claim 1, wherein
the key management information list includes encrypted fourth keys that have been
generated by encrypting a fourth key respectively with a plurality of keys, and an
encrypted second key that has been generated by encrypting the second key with the
fourth key, and the key obtaining unit (15) includes:
a first key obtaining sub-unit operable to decrypt the encrypted fourth keys of the
key management information list respectively with use of the third key; and
a second key obtaining sub-unit operable to, when the decryption by the first key
obtaining sub-unit succeeds, decrypt the encrypted second key with the fourth key
resulting from the decryption by the first key obtaining sub-unit, thereby obtaining
the second key.
5. The content playback apparatus of Claim 1, wherein
the key generation information is an encrypted first key that has been generated by
encrypting the first key with use of the disc key, and
the content key generation unit (18) generates the first key by decrypting the obtained
key generation information with the disc key.
6. The content playback apparatus of Claim 1, wherein
the key generation information is arbitrary data of a predetermined length, and is
in correspondence with the sub-content, and
the first key has been obtained as a result of subjecting the key generation information
to one-way function processing according to a predetermined encryption method, based
on the disc key, and
the content key generation unit (18) subjects the key generation information to one-way
function processing based on a predetermined encryption method, based on the disc
key, and treats resultant data as the first key.
7. The content playback apparatus of Claim 6, wherein
the first key is a result of calculation of an exclusive OR of the key generation
information and encrypted key generation information generated by encrypting the key
generation information based on the predetermined encryption method, with use of the
disc key, and
the content key generation unit (18) includes:
an encryption sub-unit operable to encrypt the key generation information based on
the predetermined encryption method, with use of the disc key; and
a calculation sub-unit operable to calculate a result of calculation of an exclusive
OR of the key generation information and the encrypted key generation information,
and treat the resultant data as the first key.
8. The content playback apparatus of Claim 7, wherein
the predetermined encryption method is an AES encryption method, and
the encryption sub-unit encrypts the key generation information according to the AES
encryption method, based on the disc key.
9. The content playback apparatus of Claim 1, wherein
the information obtaining unit (17) obtains the encrypted sub-content and the key
generation information via a network.
10. The content playback apparatus of Claim 1, wherein
the information obtaining unit (17) obtains the encrypted sub-content and the key
generation information from a dependant recording medium (40) that is separate from
the recording medium (30).
11. The content playback apparatus of Claim 10, wherein
the dependent recording medium (40) has recorded thereon key management information
list that includes a list of encrypted fourth keys that have been generated by encrypting
a fourth key respectively with each of a plurality of keys, and encrypted key generation
information that has been generated by encrypting the key generation information with
the fourth key, and
the information obtaining unit includes:
an information reading sub-unit operable to read the encrypted sub-content and the
key management information list from the dependant recording medium (40);
a first key obtaining sub-unit operable to decrypt the encrypted fourth keys of the
key management information list, based on the third key; and
a second key obtaining sub-unit operable to, when the decryption by the first key
obtaining sub-unit succeeds, decrypt the encrypted key generation information with
use of the fourth key generated as a result of the decryption by the first key obtaining
sub-unit.
12. The content playback apparatus of Claim 11, wherein
the information obtaining unit (17) obtains the encrypted sub-content and the key
generation information from a memory card (40) separate from the recording medium
(30).
13. The content playback apparatus of Claim 11, wherein
the information obtaining unit (17) obtains the encrypted sub-content and the key
generation information from a disc separate from the recording medium (30).
14. The content playback apparatus of Claim 1, wherein
the encrypted sub-content has been generated by encrypting the sub-content with use
of a block encryption method, based on the first key, and
the decryption unit (19) decrypts the encrypted sub-content with use of the block
encryption method, based on the first key.
15. The content playback apparatus of Claim 14, wherein
the encrypted sub-content has been generated by encrypting the sub-content with use
of a DES encryption method, based on the first key, and
the decryption unit (19) decrypts the encrypted sub-content with use of the DES encryption
method, based on the first key.
16. The content playback apparatus of Claim 14, wherein
the encrypted sub-content has been generated by encrypting the sub-content with use
of an AES encryption method, based on the first key, and
the decryption unit (19) decrypts the encrypted sub-content with use of the AES encryption
method, based on the first key.
17. A content playback method used in a content playback apparatus (10) that includes
a key storage unit (14) operable to store a third key which has been pre-assigned
to the content playback apparatus (10), an information obtaining unit (13), a key
obtaining unit (15), a disc key generating unit (16), an information obtaining unit
(17), a content key generating unit (18), a decrypting unit (19), and a playback unit
(20), and is for obtaining encrypted sub-content, decrypting the obtained encrypted
sub-content, and playing main content and the decrypted sub-content,
the encrypted sub-content being generated by encrypting the sub-content based on a
first key, the sub-content related to the main content, the first key being generated
by applying a predetermined operation to key generation information based on a disc
key,
the main content, a key management information list, and an encrypted disc key are
recorded on a recording medium (30), the key management information list including
encrypted key management information, the encrypted key management information generated
by encrypting key management information based on a third key, the key management
information including one of a second key and information that shows that the content
playback apparatus (10) is revoked, the encrypted disc key generated by encrypting
the disc key by using the second key,
the content playback method comprising:
an information reading step of reading the main content, the encrypted key management
information included in the key management information list, and the encrypted disc
key from the recording medium (30);
a key obtaining step of decrypting the encrypted key management information based
on the third key, to obtain the one of the second key and the information that shows
that the content playback apparatus (10) is revoked;
a disk key generating step of, when the key obtaining step has obtained the second
key, obtain the second key, and decrypt the read encrypted disc key using the second
key, thereby obtaining the disc key;
an information obtaining step of obtaining the encrypted sub-content and the key generation
information from an information source (40) other than the recording medium (30);
a content key generating step of applying the predetermined operation to the obtained
key generation information, based on the disc key obtained by the disk key generating
step, thereby generating a first key;
a decryption step of decrypting the encrypted sub-content based on the generated first
key; and
a playback step of generating signals from the main content and the sub-content.
18. A computer program product loadable in the memory of a computer, comprising software
code portions for performing the steps of method claim 17, when said product is run
on a computer.
1. Inhaltswiedergabevorrichtung (10) zum Erhalten eines verschlüsselten Teilinhalts,
zum Entschlüsseln des erhaltenen verschlüsselten Teilinhalts und zum Wiedergeben des
Hauptinhalts und des verschlüsselten Teilinhalts,
wobei der verschlüsselte Teilinhalt durch Verschlüsselung des Teilinhalts auf der
Grundlage eines ersten Schlüssels erzeugt ist und der Teilinhalt mit dem Hauptinhalt
in Beziehung steht,
dadurch gekennzeichnet, dass
der erste Schlüssel durch Anwenden einer vorbestimmten Operation auf eine Schlüsselerzeugungsinformation
auf der Grundlage eines Diskettenschlüssels erzeugt ist,
der Hauptinhalt, eine Schlüsselverwaltungsinformationsliste und ein verschlüsselter
Diskettenschlüssel auf einem Aufzeichnungsmedium (30) aufgezeichnet sind, wobei die
Schlüsselverwaltungsinformationsliste eine verschlüsselte Schlüsselverwaltungsinformation
enthält, wobei die verschlüsselte Schlüsselverwaltungsinformation durch Verschlüsselung
einer Schlüsselverwaltungsinformation auf der Grundlage eines zweiten Schlüssels erzeugt
ist, wobei die Schlüsselverwaltungsinformation einen zweiten Schlüssel oder eine Information
enthält, die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen ist, wobei
der verschlüsselte Diskettenschlüssel durch Verschlüsselung des Diskettenschlüssels
unter Verwendung des zweiten Schlüssels verschlüsselt ist,
wobei die Inhaltswiedergabevorrichtung (10) umfasst:
eine Schlüsselspeichereinheit (14), die ausgebildet ist, den dritten Schlüssel zu
speichern, der im Voraus der Inhaltswiedergabevorrichtung (10) zugewiesen worden ist;
eine Informationsleseeinheit (13), die ausgebildet ist, den Hauptinhalt, die verschlüsselte
Schlüsselverwaltungsinformation, die in der Schlüsselverwaltungsinformationsliste
enthalten ist, und den verschlüsselten Diskettenschlüssel aus dem Aufzeichnungsmedium
(30) auszulesen;
eine Schlüsselgewinnungseinheit (15), die ausgebildet ist, die verschlüsselte Schlüsselverwaltungsinformation
auf der Grundlage des dritten Schlüssels zu entschlüsseln, um den zweiten Schlüssel
oder die Information, die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen
ist, zu erhalten;
eine Diskettenschlüssel-Erzeugungseinheit (16), die ausgebildet ist, wenn die Schlüsselgewinnungseinheit
(15) den zweiten Schlüssel erhalten hat, den zweiten Schlüssel aus der Schlüsselgewinnungseinheit
(15) zu erhalten, und den ausgelesenen verschlüsselten Diskettenschlüssel unter Anwendung
des zweiten Schlüssels zu entschlüsseln, wodurch der Diskettenschlüssel erhalten wird;
eine Informationsgewinnungseinheit (17), die ausgebildet ist, den verschlüsselten
Teilinhalt und die Schlüsselerzeugungsinformation aus einer Informationsquelle (40),
die nicht das Aufzeichnungsmedium (30) ist, zu gewinnen;
eine Inhaltsschlüssel-Erzeugungseinheit (18), die ausgebildet ist, die vorbestimmte
Operation auf die gewonnene Schlüsselerzeugungsinformation auf der Grundlage des Diskettenschlüssels,
der von der Diskettenschlüssel-Erzeugungseinheit (16) erhalten wird, anzuwenden, wodurch
ein erster Schlüssel erzeugt wird;
eine Entschlüsselungseinheit (19), die ausgebildet ist, den verschlüsselten Teilinhalt
auf der Grundlage des erzeugten ersten Schlüssels zu entschlüsseln;
und
eine Wiedergabeeinheit (20), die ausgebildet ist, Signale aus dem Hauptinhalt und
dem Teilinhalt zu erzeugen.
2. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Schlüsselverwaltungsinformationsliste
eine Liste ist, die zumindest verschlüsselte zweite Schlüssel oder eine verschlüsselte
Information enthält, die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen
ist, wobei die verschlüsselten zweiten Schlüssel und die verschlüsselte Information
jeweils erzeugt sind durch Verschlüsselung unter Verwendung eines jeweils unterschiedlichen
Schlüssels aus dem dritten Schlüssel und mehreren Schlüsseln, die zu dem dritten Schlüssel
äquivalent sind, und
die Schlüsselgewinnungseinheit (15) auf der Grundlage des von der Schlüsselspeichereinheit
(14) gespeicherten dritten Schlüssels die zweiten Schlüssel oder die Information,
die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen ist, entschlüsselt,
die mit dem in der Schlüsselspeichereinheit (14) gespeicherten dritten Schlüssel verschlüsselt
wurden.
3. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Schlüsselverwaltungsinformationsliste
eine Liste aus verschlüsselten zweiten Schlüsseln ist, die durch Verschlüsselung des
zweiten Schlüssels entsprechend unter Verwendung gültiger Schlüssel erzeugt sind,
und
die Schlüsselspeichereinheit (14) mehrere Schlüssel speichert,
die Schlüsselgewinnungseinheit den übereinstimmenden Schlüssel als den dritten Schlüssel
betrachtet, wenn einer der mehreren in der Schlüsselspeichereinheit (14) gespeicherten
Schlüssel mit einem der zulässigen Schlüssel übereinstimmt.
4. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Schlüsselverwaltungsinformationsliste
verschlüsselte vierte Schlüssel, die durch Verschlüsselung eines vierten Schlüssels
entsprechend mit mehreren Schlüsseln erzeugt sind, und einen verschlüsselten zweiten
Schlüssel enthält, der durch Verschlüsselung des zweiten Schlüssels mit dem vierten
Schlüssel erzeugt ist, und wobei die Schlüsselgewinnungseinheit (15) aufweist:
eine erste Schlüsselgewinnungs-Untereinheit, die ausgebildet ist, die verschlüsselten
vierten Schlüssel der Schlüsselverwaltungsinformationsliste entsprechend unter Verwendung
des dritten Schlüssels zu entschlüsseln; und
eine zweite Schlüsselgewinnungs-Untereinheit, die ausgebildet ist, den verschlüsselten
zweiten Schlüssel mit dem vierten Schlüssel zu entschlüsseln, der sich aus der Entschlüsselung
durch die erste Schlüsselgewinnungs-Untereinheit ergibt, wenn die Entschlüsselung
durch die erste Schlüsselgewinnungs-Untereinheit erfolgreich ist, wodurch der zweite
Schlüssel erhalten wird.
5. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Schlüsselerzeugungsinformation
ein verschlüsselter erster Schlüssel ist, der durch Verschlüsselung des ersten Schlüssels
unter Verwendung des Diskettenschlüssels erzeugt ist, und
die Inhaltsschlüsselerzeugungseinheit (18) den ersten Schlüssel durch Entschlüsselung
der erhaltenen Schlüsselerzeugungsinformation mit dem Diskettenschlüssel erzeugt.
6. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Schlüsselerzeugungsinformation
beliebige Daten einer vorbestimmten Länge sind und dem Teilinhalt entspricht, und
der erste Schlüssel als Ergebnis der Anwendung einer Verarbeitung mit Einwegfunktion
auf die Schlüsselerzeugungsinformation entsprechend einem vorbestimmten Verschlüsselungsverfahren
auf der Grundlage des Diskettenschlüssels gewonnen worden ist, und
die Inhaltsschlüssel-Erzeugungseinheit (18) die Schlüsselerzeugungsinformation einer
Verarbeitung mit einer Einwegfunktion auf der Grundlage eines vorbestimmten Verschlüsselungsverfahren
basierend auf dem Diskettenschlüssel unterwirft, und resultierende Daten als den ersten
Schlüssel behandelt.
7. Inhaltswiedergabevorrichtung nach Anspruch 6, wobei der erste Schlüssel ein Ergebnis
einer Berechnung einer Exklusiv ODER-Verknüpfung der Schlüsselerzeugungsinformation
und der verschlüsselten Schlüsselerzeugungsinformation, die durch Verschlüsselung
der Schlüsselerzeugungsinformation auf der Grundlage des vorbestimmten Verschlüsselungsverfahren,
unter Verwendung des Diskettenschlüssels, erzeugt ist, und
die Inhaltsschlüssel-Erzeugungseinheit (18) aufweist:
eine Verschlüsselungsuntereinheit, die ausgebildet ist, die Schlüsselerzeugungsinformation
auf der Grundlage des vorbestimmten Verschlüsselungsverfahren unter Verwendung des
Diskettenschlüssels zu verschlüsseln; und
eine Berechnungsuntereinheit, die ausgebildet ist, ein Ergebnis einer Berechnung einer
Exklusiv-ODER-Verknüpfung der Schlüsselerzeugungsinformation und der verschlüsselten
Schlüsselerzeugungsinformation zu berechnen, und die resultierenden Daten als den
ersten Schlüssel zu behandeln.
8. Inhaltswiedergabevorrichtung nach Anspruch 7, wobei das vorbestimmte Verschlüsselungsverfahren
ein AES-Verschlüsselungsverfahren ist, und
die Verschlüsselungsuntereinheit die Schlüsselerzeugungsinformation gemäß dem AES-Verschlüsselungsverfahren
auf der Grundlage des Diskettenschlüssels verschlüsselt.
9. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Informationsgewinnungseinheit
(17) den verschlüsselten Teilinhalt und die Schlüsselerzeugungsinformation über ein
Netzwerk erhält.
10. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei die Informationsgewinnungseinheit
(17) den verschlüsselten Teilinhalt und die Schlüsselerzeugungsinformation aus einem
zugehörigen Aufzeichnungsmedium (40) gewinnt, das unabhängig von dem Aufzeichnungsmedium
(30) ist.
11. Inhaltswiedergabevorrichtung nach Anspruch 10, wobei das zugehörige Aufzeichnungsmedium
(40) drauf aufgezeichnet eine Schlüsselverwaltungsinformationsliste, die eine Liste
aus verschlüsselten vierten Schlüsseln enthält, die durch Verschlüsselung eines vierten
Schlüssels jeweils mit jedem von mehreren Schlüsseln erzeugt sind, und eine aufgezeichnete
verschlüsselte Schlüsselerzeugungsinformation aufweist, die durch Verschlüsselung
der Schlüsselerzeugungsinformation mit dem vierten Schlüssel erzeugt ist, und
die Informationsgewinnungseinheit aufweist:
eine Informationsausleseuntereinheit, die ausgebildet ist, den verschlüsselten Teilinhalt
und die Schlüsselverwaltungsinformationsliste aus dem zugehörigen Aufzeichnungsmedium
(40) auszulesen;
eine erste Schlüsselgewinnungs-Untereinheit, die ausgebildet ist, die verschlüsselten
vierten Schlüssel der Schlüsselverwaltungsinformationsliste auf der Grundlage des
dritten Schlüssels zu entschlüsseln; und
eine zweite Schlüsselgewinnungs-Untereinheit, die ausgebildet ist, die verschlüsselte
Schlüsselerzeugungsinformation unter Verwendung des vierten Schlüssels zu entschlüsseln,
der als Ergebnis der Entschlüsselung durch die erste Schlüsselgewinnungs-Untereinheit
erzeugt ist, wenn die Entschlüsselung durch die erste Schlüsselgewinnungs-Untereinheit
erfolgreich ist.
12. Inhaltswiedergabevorrichtung nach Anspruch 11, wobei die Informationsgewinnungseinheit
(17) den verschlüsselten Teilinhalt und die Schlüsselerzeugungsinformation aus einer
Speicherkarte (40) gewinnt, die getrennt von dem Aufzeichnungsmedium (30) ist.
13. Inhaltswiedergabevorrichtung nach Anspruch 11, wobei die Informationsgewinnungseinheit
(17) den verschlüsselten Teilinhalt und die Schlüsselerzeugungsinformation aus einer
Diskette gewinnt, die separat von dem Aufzeichnungsmedium (30) ist.
14. Inhaltswiedergabevorrichtung nach Anspruch 1, wobei der verschlüsselte Teilinhalt
erzeugt ist durch Verschlüsselung des Teilinhalts unter Verwendung eines Blockverschlüsselungsverfahrens
auf der Grundlage des ersten Schlüssels, und
die Entschlüsselungseinheit (19) den verschlüsselten Teilinhalt unter Verwendung des
Blockverschlüsselungsverfahrens auf der Grundlage des ersten Schlüssels entschlüsselt.
15. Inhaltswiedergabevorrichtung nach Anspruch 14, wobei der verschlüsselte Teilinhalt
erzeugt ist durch Verschlüsselung des Teilinhalts unter Verwendung eines DES-Verschlüsselungsverfahrens
auf der Grundlage des ersten Schlüssels, und
die Entschlüsselungseinheit (19) den verschlüsselten Teilinhalt unter Verwendung des
DES-Verschlüsselungsverfahrens auf der Grundlage des ersten Schlüssels entschlüsselt.
16. Inhaltswiedergabevorrichtung nach Anspruch 14, wobei der verschlüsselte Teilinhalt
erzeugt ist durch Verschlüsselung des Teilinhalts unter Verwendung eines AES-Verschlüsselungsverfahrens
auf der Grundlage des ersten Schlüssels, und
die Entschlüsselungseinheit (19) den verschlüsselten Teilinhalt unter Verwendung des
AES-Verschlüsselungsverfahrens auf der Grundlage des ersten Schlüssels entschlüsselt.
17. Inhaltswiedergabeverfahren, das in einer Inhaltswiedergabevorrichtung (10) verwendet
wird, die eine Schlüsselspeichereinheit (14), die ausgebildet ist, einen dritten Schlüssel
zu speichern, der im Voraus der Inhaltswiedergabevorrichtung (10) zugewiesen worden
ist, eine Informationsgewinnungseinheit (13), eine Schlüsselgewinnungseinheit (15),
eine Diskettenschlüssels-Erzeugungseinheit (16), eine Informationsgewinnungseinheit
(17), eine Inhaltsschlüssel-Erzeugungseinheit (18), eine Entschlüsselungseinheit (19)
und eine Wiedergabeeinheit (20) aufweist und dem Gewinnen eines verschlüsselten Teilinhalts,
der Entschlüsselung des gewonnenen verschlüsselten Teilinhalts und der Wiedergabe
eines Hauptinhalts und des entschlüsselten Teilinhalts dient,
wobei der verschlüsselte Teilinhalt erzeugt wird durch Verschlüsselung des Teilinhalts
auf der Grundlage eines ersten Schlüssels, wobei der Teilinhalt mit dem Hauptinhalt
in Beziehung steht, wobei der erste Schlüssel erzeugt wird durch Anwendung einer vorbestimmten
Operation auf eine Schlüsselerzeugungsinformation auf der Grundlage eines Diskettenschlüssels,
wobei der Hauptinhalt, eine Schlüsselverwaltungsinformationsliste und ein verschlüsselter
Diskettenschlüssel auf einem Aufzeichnungsmedium (30) aufgezeichnet werden, wobei
die Schlüsselverwaltungsinformationsliste verschlüsselte Schlüsselverwaltungsinformation
enthält, wobei die verschlüsselte Schlüsselverwaltungsinformation durch Verschlüsselung
einer Schlüsselverwaltungsinformation auf der Grundlage eines zweiten Schlüssels erzeugt
wird, wobei die Schlüsselverwaltungsinformation einen zweiten Schlüssel oder Information
enthält, die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen ist, wobei
der verschlüsselte Diskettenschlüssel durch Verschlüsselung des Diskettenschlüssels
unter Verwendung des zweiten Schlüssels erzeugt wird,
wobei das Wiedergabeverfahren umfasst:
einen Informationsausleseschritt zum Auslesen des Hauptinhalts, der verschlüsselten
Schlüsselverwaltungsinformation, die in der Schlüsselverwaltungsinformationsliste
enthalten ist, und des verschlüsselten Diskettenschlüssels aus dem Aufzeichnungsmedium
(30);
einen Schlüsselgewinnungsschritt zum Entschlüsseln der verschlüsselten Schlüsselverwaltungsinformation
auf der Grundlage des dritten Schlüssels, um den zweiten Schlüssel oder die Information
zu gewinnen, die zeigt, dass die Inhaltswiedergabevorrichtung (10) widerrufen ist;
einen Diskettenschlüssel-Erzeugungsschritt zum Gewinnen des zweiten Schlüssels, wenn
der Schlüsselgewinnungsschritt den zweiten Schlüssel erhalten hat, und zum Entschlüsseln
des ausgelesenen verschlüsselten Diskettenschlüssels unter Anwendung des zweiten Schlüssels,
wodurch der Diskettenschlüssel gewonnen wird;
einen Informationsgewinnungsschritt zur Gewinnung des verschlüsselten Teilinhalts
und der Schlüsselerzeugungsinformation aus einer Informationsquelle (40), die nicht
das Aufzeichnungsmedium (30) ist;
einen Inhaltsschlüssel-Erzeugungsschritt zum Anwenden der vorbestimmten Operation
auf die gewonnene Schlüsselerzeugungsinformation auf der Grundlage des Diskettenschlüssels,
der in dem Diskettenschlüssel-Erzeugungsschritt gewonnen wurde, wodurch eine erster
Schlüssel erzeugt wird;
einen Entschlüsselungsschritt zum Entschlüsseln des verschlüsselten Teilinhalts auf
der Grundlage des erzeugten ersten Schlüssels; und
einen Wiedergabeschritt zum Erzeugen von Signalen aus dem Hauptinhalt und dem Teilinhalt.
18. Computerprogrammprodukt, das in den Speicher eines Computers geladen werden kann und
Software-Code-Bereiche zum Ausführen der Schritte des Verfahrens des Anspruchs 17
umfasst, wenn das Produkt auf einem Computer ausgeführt wird.
1. Appareil de reproduction de contenu (10) pour obtenir un sous-contenu chiffré, déchiffrer
le sous-contenu chiffré obtenu, et reproduire le contenu principal et le sous-contenu
déchiffré,
le sous-contenu chiffré étant généré en chiffrant le sous-contenu sur base d'une première
clé, le sous-contenu étant associé au contenu principal,
caractérisé en ce que
la première clé est générée en appliquant une opération prédéterminée à l'information
de génération de clé sur base d'une clé de disque,
le contenu principal, une liste d'information de gestion de clé et une clé de disque
chiffrée sont enregistrés sur un support d'enregistrement (30), la liste d'information
de gestion de clé comprend de l'information de gestion de clé chiffrée, l'information
de gestion de clé chiffrée est générée par chiffrement d'information de gestion de
clé sur base d'une troisième clé, l'information de gestion de clé comprend un élément
parmi une deuxième clé et de l'information qui indique que l'appareil de reproduction
de contenu (10) est révoqué, et la clé de disque chiffrée est générée en chiffrant
la clé de disque à l'aide de la deuxième clé,
l'appareil de reproduction de contenu (10) comprenant :
une unité de stockage de clé (14) utilisable pour stocker la troisième clé qui a été
pré-attribuée à l'appareil de reproduction de contenu (10) ;
une unité de lecture d'information (13) utilisable pour lire le contenu principal,
l'information de gestion de clé chiffrée incluse dans la liste d'information de gestion
de clé, et la clé de disque chiffrée, à partir du support d'enregistrement (30) ;
une unité d'obtention de clé (15) utilisable pour déchiffrer l'information de gestion
de clé chiffrée sur base de la troisième clé, pour obtenir ledit élément parmi la
deuxième clé et l'information qui indique que l'appareil de reproduction de contenu
(10) est révoqué ;
une unité de génération de clé de disque (16) utilisable, quand l'unité d'obtention
de clé (15) a obtenu la deuxième clé, pour obtenir la deuxième clé à partir de l'unité
d'obtention de clé (15), et pour déchiffrer la clé de disque chiffrée lue à l'aide
de la deuxième clé, de manière à obtenir ainsi la clé de disque ;
une unité d'obtention d'information (17) utilisable pour obtenir le sous-contenu chiffré
et l'information de génération de clé à partir d'une source d'information (40) autre
que le support d'enregistrement (30) ;
une unité de génération de clé de contenu (18) utilisable pour appliquer l'opération
prédéterminée à l'information de génération de clé obtenue, sur base de la clé de
disque obtenue par l'unité de génération de clé de disque (16), de manière à générer
ainsi une première clé ;
une unité de déchiffrement (19) utilisable pour déchiffrer le sous-contenu chiffré
sur base de la première clé générée ; et
une unité de reproduction (20) utilisable pour générer des signaux à partir du contenu
principal et du sous-contenu.
2. Appareil de reproduction de contenu selon la revendication 1, dans lequel
la liste d'information de gestion de clé est une liste qui comprend au moins des deuxièmes
clés chiffrées ou de l'information chiffrée indiquant que l'appareil de reproduction
de contenu (10) est révoqué, chaque élément parmi les deuxièmes clés chiffrées et
l'information chiffrée ayant été généré par chiffrement à l'aide d'un élément différent
parmi la troisième clé et une pluralité de clés équivalentes à la troisième clé, et
l'unité d'obtention de clé (15) déchiffre, sur base de la troisième clé stockée par
l'unité de stockage de clé (14), ledit élément parmi les deuxièmes clés et l'élément
d'information qui indique que l'appareil de reproduction de contenu (10) est révoqué,
qui a été chiffré avec la troisième clé stockée dans l'unité de stockage de clé (14).
3. Appareil de reproduction selon la revendication 1, dans lequel
la liste d'information de gestion de clé est une liste de deuxièmes clés chiffrées
qui ont été générées en chiffrant respectivement la deuxième clé à l'aide de clés
valides, et
l'unité de stockage de clé (14) stocke une pluralité de clés,
l'unité d'obtention de clé, quand une clé de la pluralité de clés stockées dans l'unité
de stockage de clé (14) correspond à l'une des clés valides, considère que la clé
correspondante est la troisième clé.
4. Appareil de reproduction de contenu selon la revendication 1, dans lequel
la liste d'information de gestion de clé comprend des quatrièmes clés chiffrées qui
ont été générées en chiffrant respectivement une quatrième clé avec une pluralité
de clés, et une deuxième clé chiffrée qui a été générée en chiffrant la deuxième clé
avec la quatrième clé, et l'unité d'obtention de clé (15) comprend :
une première sous-unité d'obtention de clé utilisable pour déchiffrer les quatrièmes
clés de la liste d'information de gestion de clé chiffrées respectivement à l'aide
de la troisième clé ; et
une deuxième sous-unité d'obtention de clé utilisable, quand le déchiffrement par
la première sous-unité d'obtention de clé réussit, pour déchiffrer la deuxième clé
chiffrée à l'aide de la quatrième clé obtenue grâce au déchiffrement par la première
sous-unité d'obtention de clé, de manière à obtenir ainsi la deuxième clé.
5. Appareil de reproduction de contenu selon la revendication 1, dans lequel
l'information de génération de clé est une première clé chiffrée qui a été générée
en chiffrant la première clé à l'aide de la clé de disque, et
l'unité de génération de clé de contenu (18) génère la première clé par déchiffrement
de l'information de génération de clé obtenue avec la clé de disque.
6. Appareil de reproduction de contenu selon la revendication 1, dans lequel
l'information de génération de clé consiste en des données arbitraires de longueur
prédéterminée et est en correspondance avec le sous-contenu, et
la première clé a été obtenue suite au traitement de l'information de génération de
clé par une fonction à sens unique conformément à un procédé de chiffrement prédéterminé,
sur base de la clé de disque, et
l'unité de génération de clé de contenu (18) soumet l'information de génération de
clé à un traitement par une fonction à sens unique conformément à un procédé de chiffrement
prédéterminé, sur base de la clé de disque, et traite les données résultantes comme
étant la première clé.
7. Appareil de reproduction de contenu selon la revendication 6, dans lequel
la première clé est un résultat de calcul par une opération OU exclusif de l'information
de génération de clé et d'information de génération de clé chiffrée générée en chiffrant
l'information de génération de clé sur base du procédé de chiffrement prédéterminé,
à l'aide de la clé de disque, et
l'unité de génération de clé de contenu (18) comprend :
une sous-unité de chiffrement utilisable pour chiffrer l'information de génération
de clé sur base du procédé de chiffrement prédéterminé, à l'aide de la clé de disque
; et
une sous-unité de calcul utilisable pour calculer un résultat de calcul par une opération
OU exclusif de l'information de génération de clé et de l'information de génération
de clé chiffrée, et pour traiter les données résultantes comme étant la première clé.
8. Appareil de reproduction de contenu selon la revendication 7, dans lequel
le procédé de chiffrement prédéterminé est un procédé de chiffrement selon le standard
de chiffrement avancé AES, soit Advanced Encryption Standard, et
la sous-unité de chiffrement chiffre l'information de génération de clé conformément
au procédé de chiffrement AES, sur base de la clé de disque.
9. Appareil de reproduction de contenu selon la revendication 1, dans lequel
l'unité d'obtention d'information (17) obtient le sous-contenu chiffré et l'information
de génération de clé via un réseau.
10. Appareil de reproduction de contenu selon la revendication 1, dans lequel
l'unité d'obtention d'information (17) obtient le sous-contenu chiffré et l'information
de génération de clé à partir d'un support d'enregistrement dépendant (40) qui est
séparé du support d'enregistrement (30).
11. Appareil de reproduction de contenu selon la revendication 10, dans lequel
sur le support d'enregistrement dépendant (40) est enregistrée une liste d'information
de gestion de clé qui comprend une liste de quatrièmes clés chiffrées qui ont été
générées en chiffrant une quatrième clé respectivement avec chaque clé d'une pluralité
de clés, et de l'information de génération de clé chiffrée a été générée en chiffrant
l'information de génération de clé avec la quatrième clé, et
l'unité d'obtention d'information comprend :
une sous-unité de lecture d'information utilisable pour lire le sous-contenu chiffré
et la liste d'information de gestion de clé à partir du support d'enregistrement dépendant
(40) ;
une première sous-unité d'obtention de clé utilisable pour déchiffrer les quatrièmes
clés chiffrées de la liste d'information de gestion de clé, sur base de la troisième
clé ; et
une deuxième sous-unité d'obtention de clé utilisable, quand le déchiffrement par
la première sous-unité d'obtention de clé réussit, pour déchiffrer l'information de
génération de clé chiffrée à l'aide de la quatrième clé générée suite au déchiffrement
par la première sous-unité d'obtention de clé.
12. Appareil de reproduction de contenu selon la revendication 11, dans lequel
l'unité d'obtention d'information (17) obtient le sous-contenu chiffré et l'information
de génération de clé à partir d'une carte mémoire (40) séparée du support d'enregistrement
(30).
13. Appareil de reproduction de contenu selon la revendication 11, dans lequel
l'unité d'obtention d'information (17) obtient le sous-contenu chiffré et l'information
de génération de clé à partir d'un disque séparé du support d'enregistrement (30).
14. Appareil de reproduction de contenu selon la revendication 1, dans lequel
le sous-contenu chiffré a été généré en chiffrant le sous-contenu à l'aide d'un procédé
de chiffrement par blocs, sur base de la première clé, et
l'unité de déchiffrement (19) déchiffre le sous-contenu chiffré à l'aide du procédé
de chiffrement par blocs, sur base de la première clé.
15. Appareil de reproduction de contenu selon la revendication 14, dans lequel
le sous-contenu chiffré a été généré en chiffrant le sous-contenu à l'aide d'un procédé
de chiffrement selon le standard de chiffrement de données DES, soit Data Encryption
Standard, sur base de la première clé, et
l'unité de déchiffrement (19) déchiffre le sous-contenu chiffré à l'aide du procédé
de chiffrement DES, sur base de la première clé.
16. Appareil de reproduction de contenu selon la revendication 14, dans lequel
le sous-contenu chiffré a été généré en chiffrant le sous-contenu à l'aide d'un procédé
de chiffrement AES, sur base de la première clé, et
l'unité de déchiffrement (19) déchiffre le sous-contenu chiffré à l'aide du procédé
de chiffrement AES, sur base de la première clé.
17. Procédé de reproduction de contenu utilisé dans un appareil de reproduction de contenu
(10) comprenant une unité de stockage de clé (14) utilisable pour stocker une troisième
clé qui a été pré-attribuée à l'appareil de reproduction de contenu (10), une unité
d'obtention d'information (13), une unité d'obtention de clé (15), une unité de génération
de clé de disque (16), une unité d'obtention d'information (17), une unité de génération
de clé de contenu (18), une unité de déchiffrement (19) et une unité de reproduction
(20), et servant à obtenir un sous-contenu chiffré, à déchiffrer le sous-contenu chiffré
obtenu, et à reproduire le contenu principal et le sous-contenu déchiffré,
le sous-contenu chiffré étant généré en chiffrant le sous-contenu sur base d'une première
clé, le sous-contenu étant associé au contenu principal, la première clé étant générée
en appliquant une opération prédéterminée à l'information de génération de clé sur
base d'une clé de disque,
le contenu principal, une liste d'information de gestion de clé et une clé de disque
chiffrée étant enregistrés sur un support d'enregistrement (30), la liste d'information
de gestion de clé comprenant de l'information de gestion de clé chiffrée, l'information
de gestion de clé chiffrée étant générée par chiffrage d'information de gestion de
clé sur base d'une troisième clé, l'information de gestion de clé comprenant un élément
parmi une deuxième clé et de l'information qui indique que l'appareil de reproduction
de contenu (10) est révoqué, la clé de disque chiffrée étant générée par chiffrement
de la clé de disque à l'aide de la deuxième clé,
le procédé de reproduction de contenu comprenant :
une étape de lecture d'information consistant à lire le contenu principal, l'information
de gestion de clé chiffrée incluse dans la liste d'information de gestion de clé et
la clé de disque chiffrée, à partir du support d'enregistrement (30) ;
une étape d'obtention de clé consistant à déchiffrer l'information de gestion de clé
chiffrée sur base de la troisième clé, pour obtenir ledit élément parmi la deuxième
clé et l'information qui indique que l'appareil de reproduction de contenu (10) est
révoqué ;
une étape de génération de clé de disque consistant, quand l'unité d'obtention de
clé a obtenu la deuxième clé, à obtenir la deuxième clé et à déchiffrer la clé de
disque chiffrée lue à l'aide de la deuxième clé, de manière à obtenir ainsi la clé
de disque ;
une étape d'obtention d'information consistant à obtenir le sous-contenu chiffré et
l'information de génération de clé à partir d'une source d'information (40) autre
que le support d'enregistrement (30) ;
une étape de génération de clé de contenu consistant à appliquer l'opération prédéterminée
à l'information de génération de clé obtenue, sur base de la clé de disque obtenue
grâce à l'étape de génération de clé de disque, de manière à générer ainsi une première
clé ;
une étape de déchiffrement consistant à déchiffrer le sous-contenu chiffré sur base
de la première clé générée ; et
une étape de reproduction consistant à générer des signaux à partir du contenu principal
et du sous-contenu.
18. Produit logiciel chargeable dans la mémoire d'un ordinateur, comprenant des parties
de code logiciel pour mettre en oeuvre les étapes du procédé selon la revendication
17 lorsque ledit produit est exécuté sur un ordinateur.